I have a small community website and I need to implement some sort of forgotten password function. I currently store the passwords in the DB, encrypted with MD5.
Is
MD5 is intended to be a one-way hash. You will need to have them reset their password.